Skip to content

Patch for critical Openssl vulnerability #9485

@kallisti5

Description

@kallisti5

Welcome!

  • Yes, I've searched similar issues on GitHub and didn't find any.
  • Yes, I've searched similar issues on the Traefik community forum and didn't find any.

What did you do?

A critical vulnerability is incoming for OpenSSL 3.0.0 - 3.0.6

https://xeiaso.net/blog/openssl-3.x-secvuln-incoming
https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html

Traefik should be prepared to scan containers for OpenSSL 3.0.0 - 3.0.6 and upgrade them to 3.0.7 as it becomes available

What did you see instead?

Insecure TLS lol

What version of Traefik are you using?

any version with openssl 3.0.0 - 3.0.6

What is your environment & configuration?

# (paste your configuration here)

Add more configuration information here.

If applicable, please paste the log output in DEBUG level

No response

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions